It serves as a practical guide for security researchers to identify and test WordPress targets effectively during bug bounty hunting.
β27Jul 19, 2026Updated 2 months ago
Alternatives and similar repositories for WordPress-BugBounty
Users that are interested in WordPress-BugBounty are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- FrontHunter is a tool for testing large lists of domains to identify candidates for domain fronting.β22May 5, 2025Updated last year
- π― Chrome Extension - Passive scanner for Dependency Confusion vulnerabilities in npm/PyPI packagesβ43Jan 31, 2026Updated 8 months ago
- Burp Suite extension β passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, entβ¦β56Aug 24, 2026Updated last month
- This repository contains all the GF-Patterns Repositories. All we have to do is just to run the given Shell File and it's Done !!β22Jun 28, 2025Updated last year
- β11Apr 8, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean β’ AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- N0aziXss Origin Recon πβ23Dec 16, 2025Updated 9 months ago
- β14Feb 7, 2024Updated 2 years ago
- Stealth hybrid URL mapperβ38May 1, 2026Updated 5 months ago
- A comprehensive collection of various techniques and methods for bypassing Two-Factor Authentication (2FA) security mechanisms.β120Jan 1, 2025Updated last year
- Mannu Shell is PHP web based shell. This code is meant for performing server side file manipulation and other stuffs. Its backdoor free aβ¦β17Jun 27, 2018Updated 8 years ago
- β266Dec 10, 2025Updated 10 months ago
- Collection of Facebook Bug Bounty Writeupsβ31Sep 16, 2023Updated 3 years ago
- β16Mar 23, 2026Updated 6 months ago
- β38Oct 16, 2025Updated 11 months ago
- Managed hosting for WordPress and PHP on Cloudways β’ AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- SSRFHunterβ18Jan 17, 2026Updated 8 months ago
- Security automation with n8n ideas: 100+ Red/Blue/AppSec workflows, integrations, and ready-to-run playbooks.β105Sep 20, 2025Updated last year
- Online-Crawler-Wayback-Machineβ27Oct 15, 2024Updated last year
- 0 Click RCE exploit for CVE-2026-34159 Lama.cpp RPC serverβ28Apr 23, 2026Updated 5 months ago
- Burp Suite extension + port-based highlighter: dedupes HTTP history into a live unique-request feed and color-codes attacker/victim traffβ¦β14Aug 14, 2026Updated last month
- PoC for CVE-2026-3891 β Unauthenticated Arbitrary File Upload leading to Remote Code Execution in Pix for WooCommerce <= 1.5.0β21Jul 20, 2026Updated 2 months ago
- Fast Go-based XSS assessment toolkitβ20Mar 18, 2026Updated 6 months ago
- CVE-2026-21643β18Mar 28, 2026Updated 6 months ago
- Demonstrate how a signed driver can bypass defenses to deploy ransomware on Windows 11 with advanced AV and UAC evasion techniques.β34Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer β’ AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Springboot detectionβ23Nov 8, 2021Updated 4 years ago
- output burp body only and auto pretiffyβ22May 1, 2025Updated last year
- This python based tool can be used to discover API keys, access tokens, and other sensitive data in JavaScript files. It can scan JavaScrβ¦β16Oct 18, 2024Updated last year
- Scans WordPress sites to find unclaimed plugin slugs on the public directory.β27Oct 12, 2025Updated 11 months ago
- TokenTwin Checker β Dual Token BAC/IDOR Tester for Burp Suiteβ98Aug 24, 2026Updated last month
- Url scrapper or extractor from alienvaultβ40Mar 1, 2025Updated last year
- The samples referenced in my book, Evasive Malware (No starch Press)β61Feb 20, 2026Updated 7 months ago
- β12Nov 12, 2023Updated 2 years ago
- FortiSandbox RCE Scanner β CVE-2026-39808β26Apr 21, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Exploitation Script for CVE-2020-0688 "Microsoft Exchange default MachineKeySection deserialize vulnerability"β11Apr 1, 2020Updated 6 years ago
- Use Rust to implement some Red Team techniques :)β12Nov 11, 2024Updated last year
- π₯ Everything about web-application firewalls (WAF).β26Mar 12, 2022Updated 4 years ago
- A collection of awesome one-liners for bug bounty hunting.β60Apr 12, 2026Updated 5 months ago
- CVE-2025-60188 Atarim Plugin Exploitβ22Jan 17, 2026Updated 8 months ago
- β34Jan 16, 2026Updated 8 months ago
- C++ keylogger to save all the keys pressed into a local txt fileβ12Apr 6, 2023Updated 3 years ago